awsclaw-lambda

Pass

Audited by Gen Agent Trust Hub on Apr 13, 2026

Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides the Invoke command, which allows the agent to execute code within AWS Lambda functions as part of its management capabilities.
  • [DATA_EXFILTRATION]: Commands such as GetFunctionConfiguration and GetPolicy allow the agent to read function metadata, environment variables, and resource-based policies, which may contain sensitive configuration details or secrets.
  • [EXTERNAL_DOWNLOADS]: The CreateFunction and UpdateFunctionCode commands facilitate the retrieval of deployment packages and function code from S3 buckets or container images in ECR.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 13, 2026, 08:11 PM